Skip to main content

Showing 1–3 of 3 results for author: Olivier, R

Searching in archive eess. Search in all archives.
.
  1. arXiv:2405.01207  [pdf, ps, other

    cs.LG cs.CR cs.SD eess.AS

    Improving Membership Inference in ASR Model Auditing with Perturbed Loss Features

    Authors: Francisco Teixeira, Karla Pizzi, Raphael Olivier, Alberto Abad, Bhiksha Raj, Isabel Trancoso

    Abstract: Membership Inference (MI) poses a substantial privacy threat to the training data of Automatic Speech Recognition (ASR) systems, while also offering an opportunity to audit these models with regard to user data. This paper explores the effectiveness of loss-based features in combination with Gaussian and adversarial perturbations to perform MI in ASR models. To the best of our knowledge, this appr… ▽ More

    Submitted 2 May, 2024; originally announced May 2024.

    Comments: Trustworthy Speech Processing, Satellite Workshop at ICASSP 2024

  2. arXiv:2210.17316  [pdf, other

    eess.AS cs.AI cs.CL cs.LG cs.SD

    There is more than one kind of robustness: Fooling Whisper with adversarial examples

    Authors: Raphael Olivier, Bhiksha Raj

    Abstract: Whisper is a recent Automatic Speech Recognition (ASR) model displaying impressive robustness to both out-of-distribution inputs and random noise. In this work, we show that this robustness does not carry over to adversarial noise. We show that we can degrade Whisper performance dramatically, or even transcribe a target sentence of our choice, by generating very small input perturbations with Sign… ▽ More

    Submitted 10 August, 2023; v1 submitted 26 October, 2022; originally announced October 2022.

    Comments: Accepted at InterSpeech 2023

  3. arXiv:2203.16536  [pdf, other

    cs.CR cs.AI cs.LG cs.SD eess.AS

    Recent improvements of ASR models in the face of adversarial attacks

    Authors: Raphael Olivier, Bhiksha Raj

    Abstract: Like many other tasks involving neural networks, Speech Recognition models are vulnerable to adversarial attacks. However recent research has pointed out differences between attacks and defenses on ASR models compared to image models. Improving the robustness of ASR models requires a paradigm shift from evaluating attacks on one or a few models to a systemic approach in evaluation. We lay the grou… ▽ More

    Submitted 4 April, 2022; v1 submitted 29 March, 2022; originally announced March 2022.

    Comments: Submitted to Interspeech 2022